Sign inSign up
Calico Node

dhi.io/calico-node

Calico Node 3.30.x (fips, dev)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

3.30-debian-fips-dev, 3.30-debian13-fips-dev, 3.30-fips-dev, 3.30.7-debian-fips-dev, 3.30.7-debian13-fips-dev, 3.30.7-fips-dev

Index digest:

sha256:aadadc3989b1034eeacf58fdd8d2eac37ede60ae143facb21dd2bb8aae96e6f6

Manifest digest:

sha256:fa16b0ed1ccdd02478ff1c97b448b965631a387dc411903322a577877efc81be

Size

94.03 MB

Last pushed

3 hours ago

Vulnerabilities

0
3
6
4
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/calico-node:3.30-debian-fips-dev

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/calico-node:3.30-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/calico-node@sha256:eeacdd97c0707656784db107d2a8de480585e17a5c801200188be49bc1d089e5
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/calico-node@sha256:44c8097c251637e71307438fbe11154a7db7da478ad7e4e6111bcdd449beacff
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/calico-node@sha256:9d179ee5f3e3e905afe11a5add5feb00951b4ebbe055a1d3acb3f6a0d48ae86b
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/calico-node@sha256:464a18738017a6c417e961953ffd4d3eb59109a06046e612f559ce04d5a151da
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/calico-node@sha256:2e5ddbb53f5e299fb75e6073251b8599a5e443f0319a40cab07acbd74ee61fc8
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/calico-node@sha256:4c26769d4e5553c5d6b5437323c59ffa63942e2a4811170f557c59af96fd2f59
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/calico-node@sha256:ff98b6d2ba27583beb630aa7040f8a0871891b4a3814839ec48cfff1f0f89f0c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/calico-node@sha256:81bd3ac193a91134d29466ead632eb87564eba281f77ffe8e5446b87fc4aa8a8
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/calico-node@sha256:f2407f698e522af9e359ea6c1e1d5d9cc85419b57a326a25c12ed97cd56b9ec2
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/calico-node@sha256:c57f6ad983310c96dc3201103b44cc6caef53b3e20d85c7fb17e268205dfa796
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/calico-node@sha256:75dcade3a63ee456c9b0d9a10152f06942dfce16fe9d863552b6357c91008b53
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/calico-node@sha256:d4592bffe84b259930978c50347d53d62a26173b194f9ea7b8960573d4e50f56
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/calico-node@sha256:9b56b23c597415b1ec04217cf51d6e4bac484f079deee799faed6729743ea5d9
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/calico-node@sha256:8e23019c38d17f60102c29d2a3b2a37151f1a7772496efe7a623c69040e4fa9b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/calico-node@sha256:a8a14db3c364f0b64b0f6c06a516121c162ed8c69827b0f609c8fe88cb7aa15b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/calico-node@sha256:5741460858c2a4c3fa46dc7bfa20fc8e3d075bdef380b4afae62f904086653d0
SPDX SBOMhttps://spdx.dev/Documentdhi.io/calico-node@sha256:1bd04313e388239f31fc42402efbad09a2586bd1acc40f3d5348002a9bb3e449